Digital Forensics And Information Security Site Home
CIS Home
Edmonds Community College Home
Program Overview
forum
Certificates
Degrees
Digital Forensics Certificate
Information Security Degree
Linux Security Specialist
Certificate
Network Security Specialist
Certificate
Digital Forensics & Information
Security Club
FREE Training Sessions
Your Instructors
 


Prerequisites: CIS 274 with a minimum grade of 2.5 or equivalent experience.
Schedule: Check The Annual Schedule
Instructor: Steve Hailey

This course is part of both the Information Security Degree and Network Security Certificate.

In this course you will learn how to properly read and interpret packets and packet headers including IP, TCP, ICMP, and UDP, and will learn how to distinguish between normal, abnormal, and malicious traffic. You will also create and respond to attacks such as Smurf, Tribe Flood Network, Stacheldracht, and Targa among others. You will see how man-in-the-middle attacks are perpetrated, and how to prevent them. You will see how hackers bring down routers and switches, and will learn how to protect network infrastructures as well as properly setup and maintain an Intrusion Detection System.

This class is suitable for anyone in an information technology related field that wants to to take their troubleshooting and incident response skills to a new level, or needs to better understand the forensic value of performing packet analysis. Portions of this class have been instructed for law enforcement personnel needing to perform forensic analysis of packet captures and network traffic.

Topics Covered Include:

  • Attack Countermeasures
  • Common Exploits and Their Signatures
  • Creating Snort Rules
  • Creating TCPdump Filters
  • Creating Wireshark Filters
  • Examining Embedded Protocol Header Fields
  • Honeypots
  • Host/Network Based IDS
  • ICMP Theory
  • IDS Sensor Placement
  • Incident Response Procedures - Exercises
  • Insertion and Evasion Attacks
  • Introduction to Snort
  • Intrusion Detection
  • IP Theory
  • Man-in-the-middle Attacks
  • Mapping Networks
  • Operating System Fingerprinting
  • Packet Analysis Software
  • Packet Fragmentation
  • Routing
  • Security Models
  • Smurf Attacks
  • TCP Theory
  • TFN Attacks
  • The Domain Name System
  • The Mitnick Attack
  • Trojan Scans
  • Worm Scans
Copyright © Edmonds Community College Site Home | EdCC Home | Courses | Certificates | Degrees | FREE Training Sessions